Compliance & Security
Comprehensive guide to help you get the most out of Connect360
WhatsApp Policies
Business Policy Compliance
All businesses must comply with WhatsApp Business Policy. Key requirements: no spam, obtain customer opt-in before messaging, provide opt-out mechanism, accurate business information, comply with category-specific policies (healthcare, finance, etc.).
Message Opt-In Requirements
Customers must explicitly opt-in before you message them. Acceptable opt-in methods: website forms, SMS, email, in-store signup. Opt-in must be clear, specific to WhatsApp, and documented. Pre-checked boxes are not allowed.
Quality Rating
WhatsApp assigns quality ratings (High, Medium, Low) based on customer feedback (blocks, reports) and message performance. Maintain high rating to avoid sending restrictions. Respond to customer concerns promptly to improve rating.
Data Security
Data Encryption
All messages use end-to-end encryption in transit. Data at rest is encrypted using AES-256. API communications require TLS 1.2+. Regular security audits and penetration testing ensure platform security.
GDPR Compliance
We are fully GDPR compliant. Features include: data portability (export customer data), right to erasure (delete customer data), consent management, data processing agreements (DPA) for EU customers, EU data residency options.
Access Control
Role-based access control (RBAC) with multiple permission levels: Admin (full access), Manager (team management), Agent (message handling), Developer (API access). Two-factor authentication (2FA) mandatory for admin accounts.